FRST
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 03-11-2025
Ran by petrh (administrator) on 7EVEN (Micro-Star International Co., Ltd MS-7A34) (09-11-2025 19:13:34)
Running from C:\Users\petrh\Desktop\FRST64.exe
Loaded Profiles: petrh
Platform: Microsoft Windows 11 Home Version 24H2 26100.6899 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(A225F3B5-240D-4EE9-BCF4-697A07F5E93E -> Micro-Star INT'L CO., LTD.) C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.MSICenter_2.0.61.0_x64__kzh8wxbdkxb8p\DCv2\DCv2.exe
(Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(C:\Program Files (x86)\MSI\MSI Center\MSI.CentralServer.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\MSI Center\Engine\CC_Engine_x64.exe
(C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI.CentralServer.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(C:\Users\petrh\AppData\Roaming\uTorrent\uninstall.exe ->) (Zdenek Svub -> BitTorrent, Inc.) C:\Users\petrh\AppData\Roaming\uTorrent\utorrent.exe
(cmd.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Discord Inc. -> Discord Inc.) C:\Users\petrh\AppData\Local\Discord\app-1.0.9213\Discord.exe <6>
(DriverStore\FileRepository\u0407052.inf_amd64_84d15514ad17ffa0\B406619\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0407052.inf_amd64_84d15514ad17ffa0\B406619\atieclxx.exe
(explorer.exe ->) (AB Team d. o. o. -> AB Team) C:\Program Files (x86)\Webteh\BSPlayer\bsplayer.exe
(explorer.exe ->) (F.lux Software LLC -> f.lux Software LLC) C:\Users\petrh\AppData\Local\FluxSoftware\Flux\flux.exe
(explorer.exe ->) (Glorious, LLC) [File not signed] C:\Program Files (x86)\Glorious Core\Glorious Core.exe <4>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <31>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(explorer.exe ->) (Zdenek Svub -> Zdenek Svub) C:\Users\petrh\AppData\Roaming\uTorrent\uninstall.exe
(Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2025.11100.9001.0_x64__8wekyb3d8bbwe\Photos.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\petrh\AppData\Local\Microsoft\OneDrive\25.199.1012.0002_1\OneDrive.Sync.Service.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0407052.inf_amd64_84d15514ad17ffa0\B406619\atiesrxx.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MsMpEng.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Case\MSI_Case_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RTUWPSrvcMain.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek) C:\Program Files\TP-Link\Archer TX20U\WifiAutoInstall\WifiAutoInstallSrv.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(sihost.exe ->) (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2025.258.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe <5>
(svchost.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\CPUMetricsServer.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SecHealthUI_1000.29429.1000.0_x64__8wekyb3d8bbwe\SecHealthUI.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.165.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\petrh\AppData\Local\Microsoft\OneDrive\25.199.1012.0002_1\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> ) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealth\10.0.29429.1000-0\SecurityHealthHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI.TerminalServer.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM-x32\...\Run: [Discord] => C:\ProgramData\SquirrelMachineInstalls\Discord.exe [115848568 2025-04-27] (Discord Inc. -> Discord Inc.)
HKLM-x32\...\Run: [Glorious Core] => C:\Program Files (x86)\Glorious CORE\Glorious Core.exe [163392512 2025-02-04] (Glorious, LLC) [File not signed]
HKLM\...\RunOnce: [msedge_cleanup_{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}] => C:\Program Files (x86)\Microsoft\EdgeWebView\Application\142.0.3595.69\Installer\setup.exe [7659088 2025-11-09] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1179330921-843418109-1189897237-1001\...\Run: [AMDNoiseSuppression] => "C:\WINDOWS\system32\AMD\ANR\AMDNoiseSuppression.exe" (No File)
HKU\S-1-5-21-1179330921-843418109-1189897237-1001\...\Run: [f.lux] => C:\Users\petrh\AppData\Local\FluxSoftware\Flux\flux.exe [1535600 2025-03-14] (F.lux Software LLC -> f.lux Software LLC)
HKU\S-1-5-21-1179330921-843418109-1189897237-1001\...\Run: [Discord] => C:\Users\petrh\AppData\Local\Discord\Update.exe [1516408 2025-04-22] (Discord Inc. -> Discord Inc.)
HKU\S-1-5-21-1179330921-843418109-1189897237-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4699288 2025-10-03] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-1179330921-843418109-1189897237-1001\...\Run: [com.electron] => C:\Program Files (x86)\Glorious Core\Glorious Core.exe [163392512 2025-02-04] (Glorious, LLC) [File not signed]
HKU\S-1-5-21-1179330921-843418109-1189897237-1001\...\Run: [MicrosoftEdgeAutoLaunch_017EB225EE6215ADA3CBFA7E3ECF91FC] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4253224 2025-10-30] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1179330921-843418109-1189897237-1001\...\MountPoints2: {1574e719-8687-11f0-beac-309c2346cd41} - "E:\SetupInstall.exe"
HKU\S-1-5-21-1179330921-843418109-1189897237-1001\...\MountPoints2: {5ce3c62b-8196-11f0-beaa-309c2346cd41} - "E:\SetupInstall.exe"
HKU\S-1-5-21-1179330921-843418109-1189897237-1001\...\MountPoints2: {c996df50-a2c6-11f0-beb0-309c2346cd41} - "E:\SetupInstall.exe"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [2025-11-06] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\141.0.7390.125\Installer\chrmstp.exe [2025-11-02] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {B30F3738-2845-4921-856E-90D85A4D8969} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030872 2024-08-19] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {07DD899E-7A71-4B2A-9C12-182D450A121C} - System32\Tasks\AMDRyzenMasterSDKTask => C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe [184024 2024-08-19] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {23544F8E-F432-498C-950D-6AD8EA5F7B35} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem143.0.7482.0{F61D72D2-18E3-41BC-BAB8-5FE53C9D04A1} => C:\Program Files (x86)\Google\GoogleUpdater\143.0.7482.0\updater.exe [6933656 2025-10-19] (Google LLC -> Google LLC)
Task: {DA492F15-AE78-4024-B4D6-AF5046AE43D7} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16961872 2025-11-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {F1548B10-2F60-4445-8BD4-C3613F725105} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29173088 2025-11-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {6C08135F-15E1-42F9-B634-3AF713E48341} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [70488 2025-11-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {936DC895-C5E3-434A-9AE7-8EBB44D55602} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29173088 2025-11-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {6B08D6E4-BF3E-4D7B-9320-C2CCA6A571EC} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [316736 2025-11-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {B4BDB3EB-4BC9-495D-81C1-AF710E7942F6} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [316736 2025-11-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {2DF97BB0-5D2C-4E5D-BC1B-D57F715B65A8} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1365280 2025-11-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {DAB1A2D9-A354-4EFF-8AEE-C25C5FE32334} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {68DAAB6B-8E38-4528-BA1B-88FBC3324539} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {0B26B300-F6C1-4E1A-A810-34EEF2CB4F38} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3D598B51-6790-416E-9433-DD7128E4FA75} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B00BFF8A-5B47-4E26-832E-A9CE5F770775} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030872 2024-08-19] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {6C93CBFE-0000-4688-8C76-58F4FE8D0B66} - System32\Tasks\OneDrive Startup Task-S-1-5-21-1179330921-843418109-1189897237-1001 => C:\Users\petrh\AppData\Local\Microsoft\OneDrive\25.199.1012.0002_1\OneDriveLauncher.exe [727440 2025-11-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {2F8811EE-360C-4CFC-AABA-C275E365D737} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [60632 2024-08-19] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {454E0713-2465-4148-B1C9-34146E98ECFC} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [324312 2024-08-19] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{536403c7-c176-412c-b593-5121884d5864}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{f950f24d-8928-4ff5-baec-aee49ab27e41}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{f950f24d-8928-4ff5-baec-aee49ab27e41}: [DhcpDomain] home
Edge:
=======
Edge Profile: C:\Users\petrh\AppData\Local\Microsoft\Edge\User Data\Default [2025-11-09]
Edge Extension: (Dokumenty Google offline) - C:\Users\petrh\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-11-05]
Edge Extension: (Edge relevant text changes) - C:\Users\petrh\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-11-05]
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-11-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-11-01] (Microsoft Corporation -> Microsoft Corporation)
Chrome:
=======
CHR Profile: C:\Users\petrh\AppData\Local\Google\Chrome\User Data\Default [2025-11-09]
CHR Notifications: Default -> hxxps://csfloat.com
CHR HomePage: Default -> hxxp://
www.google.com/
CHR StartupUrls: Default -> "hxxp://
www.google.cz/","hxxp://www.facebook.co ... utube.com/"
CHR Session Restore: Default -> is enabled.
CHR Extension: (BetterTTV) - C:\Users\petrh\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2025-11-06]
CHR Extension: (Slate) - C:\Users\petrh\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmhmcmgkegfffbbfobhjpdbimgmoohap [2025-11-06]
CHR Extension: (FrankerFaceZ) - C:\Users\petrh\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadndhdgpmmaapbmfcknlfgcflmmmieb [2025-11-06]
CHR Extension: (Return YouTube Dislike) - C:\Users\petrh\AppData\Local\Google\Chrome\User Data\Default\Extensions\gebbhagfogifgggkldgodflihgfeippi [2025-11-06]
CHR Extension: (Dokumenty Google offline) - C:\Users\petrh\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-11-05]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\petrh\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2025-11-06]
CHR Extension: (Google Keep – poznámky a seznamy) - C:\Users\petrh\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2025-11-06]
CHR Extension: (Sygic Truck Route Sender) - C:\Users\petrh\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbmaohenoelmngbbkjlfjboppojeckbm [2025-11-06]
CHR Extension: (Rozšíření Google Keep pro Chrome) - C:\Users\petrh\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpcaedmchfhocbbapmcbpinfpgnhiddi [2025-11-06]
CHR Extension: (Repeek (formerly FACEIT Enhancer)) - C:\Users\petrh\AppData\Local\Google\Chrome\User Data\Default\Extensions\mokknliiomknodkdmpcellamkopbdmao [2025-11-06]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\petrh\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-11-05]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13366704 2025-11-03] (Microsoft Corporation -> Microsoft Corporation)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpDefenderCoreService.exe [2026144 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 MSI_Case_Service; C:\Program Files (x86)\MSI\MSI Center\Case\MSI_Case_Service.exe [134160 2025-01-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MSI_Center_Service; C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe [181776 2025-04-17] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 RTUsbSwSrvc; C:\WINDOWS\RTUWPSrvcMain.exe [1026160 2024-10-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\NisSrv.exe [4418608 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WifiAutoInstallSrv; C:\Program Files\TP-Link\Archer TX20U\WifiAutoInstall\WifiAutoInstallSrv.exe [139672 2024-10-09] (Realtek Semiconductor Corp. -> Realtek)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MsMpEng.exe [282440 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendrmgr.sys [25672 2024-04-23] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [33592 2024-09-12] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc)
R2 AMDRyzenMasterDriverV20; C:\WINDOWS\system32\AMDRyzenMasterDriver.sys [48328 2024-08-19] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_960126269e89c62e\amdsafd.sys [113880 2024-05-10] (Advanced Micro Devices -> Advanced Micro Devices)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0407052.inf_amd64_84d15514ad17ffa0\B406619\amdkmdag.sys [106596128 2024-09-04] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [61888 2023-05-24] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
S1 amsdk; C:\WINDOWS\system32\drivers\amsdk.sys [232792 2025-11-05] (Zemana D.O.O. Sarajevo -> Copyright 2018.)
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-04-26] (Microsoft Corporation) [File not signed]
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [333216 2025-10-06] (Microsoft Windows -> Microsoft Corporation)
R3 NTIOLib_CC_COMM; C:\Program Files (x86)\MSI\MSI Center\Lib\SYS\NTIOLib_X64.sys [32592 2024-09-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 RevoProcessDetector; C:\WINDOWS\System32\DRIVERS\RevoProcessDetector.sys [19504 2024-03-28] (Microsoft Windows Hardware Compatibility Publisher -> VS Revo Group)
S3 rtcx21; C:\WINDOWS\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_feec7a9662e785f0\rtcx21x64.sys [539648 2024-03-28] (Microsoft Windows -> Realtek)
R3 rtwlanu6; C:\WINDOWS\System32\drivers\rtwlanu6.sys [16427520 2024-10-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [48800 2022-02-23] (SteelSeries ApS -> SteelSeries ApS)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20888 2025-10-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [629128 2025-10-22] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102832 2025-10-22] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-11-09 19:13 - 2025-11-09 19:14 - 000022799 _____ C:\Users\petrh\Desktop\FRST.txt
2025-11-09 19:07 - 2025-11-09 18:44 - 002443776 _____ (Farbar) C:\Users\petrh\Desktop\FRST64.exe
2025-11-09 18:59 - 2025-11-09 19:13 - 000000000 ____D C:\FRST
2025-11-09 16:53 - 2025-11-09 16:53 - 000677108 _____ C:\WINDOWS\system32\perfh005.dat
2025-11-09 16:53 - 2025-11-09 16:53 - 000144960 _____ C:\WINDOWS\system32\perfc005.dat
2025-11-07 23:54 - 2025-11-09 18:49 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-11-07 17:07 - 2025-11-07 17:07 - 000000000 ____D C:\Users\petrh\AppData\Local\Blizzard
2025-11-07 17:05 - 2025-11-07 17:05 - 000000000 ____D C:\ProgramData\Battle.net
2025-11-07 17:04 - 2025-11-07 17:11 - 000000000 ____D C:\Users\petrh\Documents\Warcraft III
2025-11-07 17:04 - 2025-11-07 17:05 - 000000000 ____D C:\Users\petrh\AppData\Local\Blizzard Entertainment
2025-11-07 17:04 - 2025-11-07 17:04 - 000000000 ____D C:\ProgramData\Blizzard Entertainment
2025-11-07 16:46 - 2025-11-07 17:02 - 000000000 ____D C:\Users\petrh\Desktop\Mordhau
2025-11-07 16:45 - 2025-11-07 16:45 - 000000000 ____D C:\Users\petrh\Desktop\Warcraft 3 WC3_1.30.1-win-enUS - Without CD Key Full Game
2025-11-07 16:45 - 2025-11-07 16:45 - 000000000 ____D C:\Users\petrh\Desktop\revolt
2025-11-07 16:45 - 2025-11-07 16:45 - 000000000 ____D C:\Users\petrh\Desktop\Quake III Arena
2025-11-07 16:25 - 2025-11-07 16:25 - 000000838 _____ C:\Users\petrh\Desktop\lan.download
2025-11-06 10:39 - 2025-11-06 10:39 - 000000000 ____D C:\Users\petrh\Documents\Zvukové záznamy
2025-11-06 10:33 - 2025-11-06 10:33 - 000000000 ____D C:\Users\petrh\AppData\Local\ProcessLasso
2025-11-05 14:11 - 2025-11-05 14:22 - 000232792 _____ (Copyright 2018.) C:\WINDOWS\system32\Drivers\amsdk.sys
2025-11-05 14:04 - 2025-11-05 14:22 - 000000000 ____D C:\Users\petrh\AppData\Local\AMSDK
2025-11-05 13:54 - 2025-11-09 16:50 - 000000000 ____D C:\Users\petrh\AppData\Roaming\discord
2025-11-05 13:53 - 2025-11-06 10:42 - 000000000 ____D C:\Users\petrh\AppData\Local\VirtualStore
2025-11-05 13:50 - 2014-02-13 23:59 - 000024064 _____ C:\WINDOWS\zoek-delete.exe
2025-11-05 13:05 - 2025-11-05 13:05 - 000000691 _____ C:\Users\petrh\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\zoek (1).lnk
2025-11-05 13:04 - 2025-11-06 10:07 - 000000000 ____D C:\WINDOWS\RTUWPSrvcMain
2025-11-05 13:00 - 2025-11-07 17:48 - 000000000 ____D C:\Users\petrh\AppData\Local\CrashDumps
2025-11-05 13:00 - 2025-11-05 13:45 - 000000000 ____D C:\zoek_backup
2025-11-05 12:19 - 2025-11-05 12:19 - 000001188 _____ C:\Users\petrh\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JRT.lnk
2025-11-04 10:21 - 2025-11-04 10:21 - 000001187 _____ C:\Users\petrh\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Adlice Protect.lnk
2025-11-04 10:20 - 2025-11-04 10:20 - 051983448 _____ (Adlice Software ) C:\Users\petrh\Desktop\RogueKiller_setup.exe
2025-11-04 10:15 - 2025-11-04 10:15 - 000000719 _____ C:\Users\petrh\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SetupInstall.lnk
2025-11-03 14:52 - 2025-11-03 14:52 - 000000000 ____D C:\ProgramData\Sophos
2025-11-03 08:04 - 2025-11-03 08:04 - 000000000 ____D C:\ProgramData\Whesvc
2025-11-03 07:46 - 2025-11-03 14:49 - 000000000 ____D C:\AdwCleaner
2025-11-02 19:37 - 2025-11-03 07:41 - 000001062 _____ C:\Users\petrh\Desktop\Temp File Cleaner.lnk
2025-11-02 19:37 - 2025-11-02 19:37 - 000000911 _____ C:\Users\petrh\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Temp File Cleaner.lnk
2025-11-02 19:37 - 2025-11-02 19:37 - 000000000 ____D C:\Users\petrh\AppData\Roaming\addpcs
2025-11-02 19:37 - 2025-11-02 19:37 - 000000000 ____D C:\Program Files\Temp File Cleaner
2025-11-02 16:14 - 2025-11-02 16:14 - 000000000 ____D C:\Users\petrh\Desktop\vibranceGUI
2025-11-02 16:14 - 2025-11-02 16:14 - 000000000 ____D C:\Users\petrh\AppData\Roaming\vibranceGUI
2025-11-02 12:54 - 2025-11-02 12:54 - 000000000 _____ C:\Users\petrh\Desktop\prikazy.txt
2025-11-02 11:24 - 2025-11-02 11:24 - 000000000 ____D C:\Users\petrh\AppData\Local\ATI
2025-11-02 10:16 - 2025-11-02 10:16 - 000003230 _____ C:\Users\petrh\Desktop\autoexec.cfg
2025-11-02 09:32 - 2025-11-02 09:32 - 000006796 _____ C:\Users\petrh\Desktop\config.zip
2025-11-02 09:22 - 2025-11-02 09:22 - 000388608 _____ (Trend Micro Inc.) C:\Users\petrh\Desktop\HijackThis.exe
2025-11-02 09:22 - 2018-12-10 19:29 - 000794624 _____ (juvlarN) C:\Users\petrh\Desktop\vibranceGUI.exe
2025-11-02 09:21 - 2025-11-02 09:21 - 000236983 _____ C:\Users\petrh\Desktop\vibranceGUI.zip
2025-11-02 08:25 - 2025-11-02 08:25 - 000000623 _____ C:\Users\petrh\Desktop\cleartemp.bat
2025-11-02 08:16 - 2025-11-02 08:17 - 000000000 ____D C:\Users\petrh\AppData\Roaming\ProcessLasso
2025-11-02 08:16 - 2025-11-02 08:16 - 002638408 _____ (Bitsum LLC) C:\Users\petrh\Desktop\processlassosetup64.exe
2025-11-01 21:53 - 2025-11-01 21:53 - 000001172 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Scorpion's WinCheater 2.lnk
2025-11-01 21:53 - 2025-11-01 21:53 - 000001160 _____ C:\Users\petrh\Desktop\Scorpion's WinCheater 2.lnk
2025-11-01 21:52 - 2025-11-01 22:04 - 000000000 ____D C:\Program Files (x86)\Scorpions WinCheater
2025-11-01 18:43 - 2025-11-01 18:43 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2025-10-18 15:12 - 2025-10-18 15:15 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleUserPEH
2025-10-17 13:59 - 2025-10-17 13:59 - 000000000 _____ C:\Users\petrh\Desktop\Nový Textový dokument (4).txt
2025-10-15 16:57 - 2025-10-15 16:57 - 000035125 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-10-15 16:57 - 2025-10-15 16:57 - 000035125 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-10-11 20:01 - 2025-10-31 14:45 - 000000000 ____D C:\Users\petrh\Desktop\urad prace dokumenty
2025-10-10 18:53 - 2025-10-10 18:53 - 000000000 _____ C:\Users\petrh\Desktop\Nový Textový dokument (3).txt
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-11-09 19:14 - 2025-04-26 18:23 - 000000000 ____D C:\Users\petrh\AppData\Roaming\uTorrent
2025-11-09 19:09 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-11-09 19:02 - 2025-05-17 15:38 - 000000000 ____D C:\Program Files (x86)\Steam
2025-11-09 18:49 - 2025-04-27 06:48 - 000000000 ____D C:\Users\petrh\AppData\Local\Discord
2025-11-09 18:49 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-11-09 18:12 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-11-09 18:12 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-11-09 17:56 - 2025-04-28 12:20 - 000000000 ____D C:\Users\petrh\AppData\Roaming\vlc
2025-11-09 16:53 - 2025-04-26 17:31 - 001603790 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-11-09 16:53 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF
2025-11-09 16:50 - 2025-07-19 17:41 - 000003098 _____ C:\WINDOWS\system32\Tasks\AMDInstallLauncher
2025-11-09 16:49 - 2025-04-30 13:09 - 000000000 ____D C:\Users\petrh\AppData\Roaming\Glorious Core
2025-11-09 16:49 - 2025-04-26 17:38 - 000000000 ___RD C:\Users\petrh\OneDrive
2025-11-09 16:49 - 2025-04-26 17:26 - 000008760 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-11-09 16:49 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ServiceState
2025-11-09 16:48 - 2025-04-26 17:25 - 000012288 ___SH C:\DumpStack.log.tmp
2025-11-09 16:48 - 2025-04-26 17:25 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-11-09 01:17 - 2025-04-26 17:41 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2025-11-09 01:17 - 2024-04-01 08:21 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2025-11-09 00:33 - 2025-06-03 09:45 - 000000000 ____D C:\Program Files\Microsoft Office
2025-11-08 13:30 - 2025-04-26 17:38 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1179330921-843418109-1189897237-1001
2025-11-08 13:30 - 2025-04-26 17:38 - 000003574 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-1179330921-843418109-1189897237-1001
2025-11-08 13:30 - 2025-04-26 17:38 - 000003358 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1179330921-843418109-1189897237-1001
2025-11-08 13:30 - 2025-04-26 17:38 - 000002379 _____ C:\Users\petrh\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-11-08 11:05 - 2025-04-26 17:42 - 000000000 ____D C:\Users\petrh\AppData\Local\AMD_Common
2025-11-08 10:46 - 2025-04-26 17:36 - 000000000 ____D C:\Users\petrh\AppData\Local\Packages
2025-11-08 10:46 - 2025-04-26 17:28 - 000000000 ____D C:\ProgramData\Packages
2025-11-06 11:41 - 2025-04-26 17:34 - 000000000 ____D C:\Users\petrh
2025-11-06 11:36 - 2025-04-26 17:25 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-11-06 11:15 - 2025-04-26 17:41 - 000000000 ____D C:\Users\petrh\AppData\Local\AMD
2025-11-06 10:31 - 2024-04-01 08:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-11-05 13:54 - 2025-04-27 06:49 - 000002243 _____ C:\Users\petrh\Desktop\Discord.lnk
2025-11-03 09:59 - 2024-04-01 17:31 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2025-11-03 09:59 - 2024-04-01 17:31 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2025-11-03 09:59 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2025-11-03 09:59 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2025-11-03 09:59 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2025-11-03 09:59 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2025-11-03 09:59 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\system32\winrm
2025-11-03 09:59 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\system32\WCN
2025-11-03 09:59 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\system32\slmgr
2025-11-03 09:59 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2025-11-03 09:59 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2025-11-03 09:59 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2025-11-03 09:59 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-11-03 09:59 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files\Windows Defender
2025-11-03 09:59 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files (x86)\Windows Defender
2025-11-03 09:59 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2025-11-03 09:59 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-11-03 09:59 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2025-11-03 09:59 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2025-11-03 09:59 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-11-03 09:59 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-11-03 09:59 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-11-03 09:59 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2025-11-03 09:59 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\IME
2025-11-03 09:59 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\System
2025-11-03 09:59 - 2024-04-01 08:21 - 000000000 ____D C:\WINDOWS\servicing
2025-11-03 07:57 - 2025-04-26 19:11 - 000002009 _____ C:\Users\petrh\Desktop\CrystalDiskInfo.lnk
2025-11-03 07:57 - 2025-04-26 19:11 - 000000000 ____D C:\Program Files\CrystalDiskInfo
2025-11-03 07:53 - 2025-08-10 19:45 - 000000000 ____D C:\Program Files (x86)\Fortuna Poker
2025-11-02 12:40 - 2025-04-26 17:38 - 000000000 ____D C:\Users\petrh\AppData\Local\PlaceholderTileLogoFolder
2025-11-02 06:57 - 2025-04-26 17:50 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-11-02 06:57 - 2025-04-26 17:50 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2025-11-02 06:51 - 2025-04-26 17:26 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-11-02 06:51 - 2025-04-26 17:26 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-11-02 06:45 - 2025-04-26 17:26 - 000003714 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{B23EAE19-935F-403A-ACC2-C42A46E576B4}
2025-11-02 06:45 - 2025-04-26 17:26 - 000003588 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{9F7E5272-A924-402C-A652-B85FFCFACBEB}
2025-10-30 10:48 - 2025-04-26 17:36 - 000000000 ____D C:\Users\petrh\AppData\Local\D3DSCache
2025-10-28 03:51 - 2025-04-26 17:34 - 000000000 ___SD C:\Users\petrh\AppData\Roaming\Microsoft\Protect
2025-10-22 07:58 - 2025-04-26 17:25 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2025-10-20 23:31 - 2025-04-26 18:27 - 000002156 _____ C:\Users\petrh\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\f.lux.lnk
2025-10-19 12:19 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2025-10-17 07:20 - 2025-04-27 14:28 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-10-17 07:18 - 2025-04-27 14:28 - 214534944 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-10-16 00:42 - 2025-05-17 15:39 - 000000000 ____D C:\Users\petrh\AppData\Local\Steam
2025-10-15 19:11 - 2025-04-26 17:25 - 000332944 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-10-15 19:10 - 2024-04-01 17:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2025-10-15 19:10 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\UUS
2025-10-15 19:10 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-10-15 19:10 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-10-15 19:10 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources
2025-10-15 19:10 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-10-15 19:10 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup
2025-10-15 19:10 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-10-15 19:10 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2025-10-15 19:10 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2025-10-15 19:10 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-10-15 19:10 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-10-15 19:10 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\Provisioning
2025-10-15 19:10 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2025-10-15 19:10 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-10-15 19:10 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\USOPrivate
2025-10-15 16:57 - 2025-04-26 17:29 - 003276800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-10-11 20:00 - 2025-06-03 09:22 - 000000000 ____D C:\Users\petrh\AppData\Roaming\Microsoft\Word
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================